CVE-2021-33347
Summary
| CVE | CVE-2021-33347 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-06-18 11:15:00 UTC |
| Updated | 2021-06-21 21:55:00 UTC |
| Description | An issue was discovered in JPress v3.3.0 and below. There are XSS vulnerabilities in the template module and tag management module. If you log in to the background by means of weak password, the storage XSS vulnerability can occur. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| There is a storage XSS vulnerability in the template module · Issue #152 · JPressProjects/jpress · GitHub | MISC | github.com | |
| There is a storage XSS vulnerability in the template module · Issue #152 · JPressProjects/jpress · GitHub | MISC | github.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.